Blog > Data Breach & Privacy

Bridgeport Capital Data Breach: What Clients Need to Know

Bridgeport Capital Services, a Coral Springs, Florida business-financing company, notified individuals in September 2026 of a data security incident that may have involved names, Social Security numbers, driver’s license numbers, and client account information. Here is what the company has disclosed and what affected individuals can consider doing.

Bridgeport Capital Data Breach: What Clients Need to Know

What Happened in the Bridgeport Capital Data Breach

A data security incident disclosed in September 2026

According to a notification letter Bridgeport Capital Services, Inc. filed with the Massachusetts Attorney General, the company — acting as servicing agent for Bridgeport Capital Funding, LLC — states that it recently discovered a data security incident that may affect certain information about the recipients. The letter is dated September 11, 2026, and appears on the Massachusetts Office of Consumer Affairs and Business Regulation’s list of data breach notification letters for September 2026.

The company’s notice does not state when the incident occurred, when it was discovered, or how it happened. Separately, a ransomware-tracking service reports that a ransomware group known as Play listed Bridgeport Capital Services as a victim on August 17, 2026; that listing is a threat-actor claim and has not been confirmed by the company, which has not publicly attributed the incident to any group. Bridgeport Capital states that it and Bridgeport Capital Funding will continue operations as normal, without disruption to customers. As with many incidents of this kind, details reported at this stage may change.

What Information May Have Been Involved

Names, Social Security numbers, license numbers, and account data

In its notice, Bridgeport Capital states that the information involved in the incident may include some or all of the following: first and last name, contact information such as email address and phone number, Social Security number, driver’s license number, date and/or place of birth, and client business account numbers. The company notes the information involved varies by individual.

Because Social Security numbers and driver’s license numbers are among the categories listed, and because the affected data also includes business account identifiers, there can be an elevated risk of identity theft, new-account fraud, or targeted phishing aimed at both individuals and their businesses. The company has not reported any known misuse of the information, but the letter does not state that it has ruled misuse out.

Who May Be Affected by the Bridgeport Capital Breach

Clients and other individuals connected to the financing company

Bridgeport Capital Services provides accounts receivable factoring, purchase order financing, and related business-financing services to small and mid-sized companies, and its notice was sent on behalf of Bridgeport Capital Funding, LLC. Because the information listed includes client business account numbers, the individuals potentially affected may include business owners, principals, and other individuals associated with the company’s clients, though the notice does not specify the affected population.

Bridgeport Capital has not published the total number of individuals affected. The filing with the Massachusetts Attorney General indicates that Massachusetts residents were among those notified, and the letter’s enclosure references contacting the three major credit bureaus, consistent with a multi-state notification. If you received a letter from Bridgeport Capital Services referencing this incident or an Experian IdentityWorks activation code, that notice may indicate your information was among the data reported to have been affected.

How Bridgeport Capital Responded and What Protections Are Offered

Twenty-four months of Experian IdentityWorks and identity restoration

Bridgeport Capital states that, in response to the incident, it immediately took steps to secure its systems and help prevent a recurrence, including deploying advanced monitoring tools and significantly strengthening its network perimeters and firewalls. The company reports it is offering complimentary credit monitoring and other identity protection services through Experian IdentityWorks to all individuals receiving the notice.

According to the letter’s enclosure, the offer includes a 24-month Experian IdentityWorks membership with credit monitoring, Identity Restoration support available for 24 months from the date of the letter, Experian’s ExtendCARE continued restoration assistance, and a $1,000,000 identity theft insurance policy. Individuals must enroll themselves using the activation code and enrollment deadline printed in their letter. The company directs questions to (954) 345-5797, Monday through Thursday from 9:00 a.m. to 5:00 p.m. and Friday from 9:00 a.m. to 3:00 p.m. Eastern Time.

Steps You Can Take to Protect Yourself

Practical precautions while the situation is reviewed

Because the notice lists Social Security numbers and driver’s license numbers among the affected data, affected individuals may wish to consider a few precautionary steps:

  • Enroll in the Experian IdentityWorks offer. If your letter includes an activation code, consider enrolling before the deadline printed in your letter; Identity Restoration support is described as available immediately without enrollment.
  • Consider a credit freeze or fraud alert. Both are free through Equifax, Experian, and TransUnion, and a freeze can help prevent new accounts from being opened with a stolen Social Security number.
  • Watch your business accounts too. Because client business account numbers may have been involved, review business banking and financing accounts for unfamiliar activity and alert your bank to the incident.
  • Review your credit reports. You are entitled to free credit reports at annualcreditreport.com; watch for accounts or inquiries you do not recognize.
  • Stay alert to phishing. Be cautious of unexpected emails, calls, or texts referencing Bridgeport Capital or the incident, and verify any outreach through the company’s published phone number.

This information is a general overview and is not legal advice; your situation may differ, and consulting a legal professional can help you understand rights that may apply to you.

Talk to Wilshire Law Firm

Were you affected by the Bridgeport Capital data breach?

If your personal or business information may have been involved in the Bridgeport Capital data breach, do you know what your options are? Our nationally recognized, award-winning team is here to help you understand your rights. Wilshire Law Firm offers free consultations and free case reviews with a legal professional, and we are available 24/7. Because we work on a contingency basis, there are no fees unless you get paid.

Contact Wilshire Law Firm today to schedule your free case review and get your questions answered.

FAQs

Bridgeport Capital’s notification letter is dated September 11, 2026, and states the company recently discovered a data security incident; it does not give the date the incident occurred or was discovered. A ransomware-tracking service reports the company was listed as a victim by a ransomware group on August 17, 2026, but that is a threat-actor claim not confirmed by the company.

The company’s notice does not describe how the incident occurred. Reporting indicates a ransomware group known as Play claimed responsibility, but Bridgeport Capital has not publicly attributed the incident to any group or confirmed that claim.

According to the notice, the information may include first and last name, contact information such as email address and phone number, Social Security number, driver’s license number, date and/or place of birth, and client business account numbers. The information involved varies by individual.

Bridgeport Capital has not published a total number of affected individuals. The company filed its notice with the Massachusetts Attorney General, indicating Massachusetts residents were among those notified.

Yes. The company reports it is offering a complimentary 24-month Experian IdentityWorks membership, including credit monitoring, Identity Restoration, ExtendCARE, and a $1,000,000 identity theft insurance policy. Individuals must enroll using the activation code and by the deadline printed in their letter.

Consider enrolling in the Experian IdentityWorks offer before the deadline, placing a credit freeze or fraud alert, reviewing your personal and business accounts and credit reports, staying alert to phishing, and keeping your notice. You may also wish to speak with a legal professional about any rights or options that may apply to your situation.

Individuals who believe they were affected may have legal options, and data breaches involving Social Security numbers and driver’s license numbers can sometimes lead to class action litigation. Whether a claim may apply to you depends on the specific facts. A free case review with a legal professional can help you understand your potential rights.

Related Content

Guides, nearby offices, and related practice areas.

Start Your Free Case Review

4.9 out of 2,521 reviews
  • Available 24/7
  • Hablamos Español
  • Nationally-Recognized Powerhouse Team
As seen in:

We'll contact you within minutes

No fees unless you get paid.

By submitting this form, you knowingly, voluntarily, and expressly consent to receive from Wilshire Law Firm telephone calls, emails, and SMS text messages, including those made using an automatic telephone dialing system (auto-dialer), artificial intelligence (AI), and/or pre-recorded or artificial voice messages. These communications are for the purpose of providing prompt consultation regarding your potential case. You understand that by providing your telephone number, you are granting permission to be contacted for this purpose, even if your number is on a federal or state Do-Not-Call registry. Consent is not required as a condition of retaining Wilshire Law Firm. Message and data rates may apply. You may revoke your consent to receive calls, texts, or emails at any time by replying “STOP” to any text message, calling 888-557-3271, filling out the form at wilshirelawfirm.com/do-not-contact or by any other reasonable method. For more information, refer to our Privacy Policy.

Locations

Find your nearest office — serving all of California and employment clients in Oregon and Washington.

Appointments required for office visits

Beverly HillsIrvineLos AngelesOaklandRiversideSacramentoSan DiegoTorrance